Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 94% confidence
- Finding
- The skill documentation shows operational capabilities to invoke Python, access workspace paths, and write persistent output files, yet no permissions are declared. This creates a transparency and governance gap: a user or platform may authorize or run the skill without realizing it can read local files, write data to persistent storage, and execute shell-level commands, increasing the risk of unintended data exposure or misuse.
